Dragon Center
Vendor:
First CVE: May 18, 2020 · Active for 6 years
4
Total CVEs
More Total CVEs than 75% of tracked products
1.3
Avg CVEs / Year
Higher CVE frequency than 59% of tracked products
8.3
Avg CVSS
Higher Avg CVSS than 75% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Dragon Center over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 18, 2020
6 years ago
Most Recent CVE
Feb 4, 2022
1,635 days ago
CVE Severity & Scoring
Dragon Center4 CVEs
75%
25%
All CVEs353,240 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local3 (75.0%)
Network1 (25.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None4 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low3 (75.0%)
High0 (0.0%)
None1 (25.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-27965CRITICAL The MsIo64.sys driver before 1.1.19.1016 in MSI Dragon Center before 2.0.98.0 has a buffer overflow that allows privilege escalation via a crafted 0x80102040, 0x80102044, 0x8010205 | Mar 5, 2021 | 9.8 | 37 | NO | NO |
CVE-2021-44901HIGH Micro-Star International (MSI) Dragon Center <= 2.0.116.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the atidgllk.sys, atillk64.sys, MODAPI.sys, NT | Feb 4, 2022 | 7.8 | 25 | NO | NO |
CVE-2020-13149HIGH Weak permissions on the "%PROGRAMDATA%\MSI\Dragon Center" folder in Dragon Center before 2.6.2003.2401, shipped with Micro-Star MSI Gaming laptops, allows local authenticated users | May 18, 2020 | 7.8 | 25 | NO | NO |
CVE-2021-29337HIGH MODAPI.sys in MSI Dragon Center 2.0.104.0 allows low-privileged users to access kernel memory and potentially escalate privileges via a crafted IOCTL 0x9c406104 call. This IOCTL pr | Jun 21, 2021 | 7.8 | 24 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (4 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (4 CVEs).
Media Mentions
Signals from CVEs in this product scope (4 CVEs).
Top CNAs Publishing CVEs For Dragon Center
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.0.104.0 | 1 | 7.8 | 0.8% | 0 | 0 |